π¨ Watch out as the new #PS1Bot malware steals crypto wallets, passwords, and sensitive data, spreading through #malvertising while evading detection.
Read: hackread.com/malvertising...
#CyberSecurity #Malware #Crypto #Keylogger
@b4n1shed.bsky.social
Security Research, Threat Intelligence, Malware Analysis, Embedded Systems, Misc. Hackery and Shenanigans.
π¨ Watch out as the new #PS1Bot malware steals crypto wallets, passwords, and sensitive data, spreading through #malvertising while evading detection.
Read: hackread.com/malvertising...
#CyberSecurity #Malware #Crypto #Keylogger
New PS1Bot Malware Campaign Uses Malvertising to Deploy Multi-Stage In-Memory Attacks thehackernews.com/2025/08/new-... via @thehackernews.bsky.social
13.08.2025 16:13 β π 1 π 1 π¬ 0 π 0Excited to announce that we just published our research into "PS1Bot" a multi-stage PowerShell-based modular malware framework being delivered via malvertising campaigns that we've been tracking throughout 2025. Check it out!
blog.talosintelligence.com/ps1bot-malve...
#malware #stealer
Attacker Specialization Puts Threat Modeling on Defensive
www.darkreading.com/threat-intel...
Researchers Unveil New Mechanism to Track Compartmentalized Cyber Threats gbhackers.com/new-mechanis...
14.05.2025 14:41 β π 1 π 0 π¬ 0 π 0An unnlocked padlock being exchanged in front of a desktop computer screen.
Attack kill chains are evolving, and defenders must, too. In this two-part blog, Talos examines how threat actors are working together like never before, and proposes an extension to the Diamond Model: http://cs.co/63324NVHbE
13.05.2025 14:54 β π 2 π 1 π¬ 0 π 0Huge thanks to @vertexproject.bsky.social for updating Synapse to support the new "relationship" context.
Weβre excited to see this research foster collaboration and push real change across the threat intelligence community. (3/3)
In blog 2, we dive into the challenges of investigating compartmentalized campaigns. We share our approach to identifying them and propose an extended Diamond Model with a new "relationship" layer to close the analytical gaps. (2/3)
blog.talosintelligence.com/compartmenta...
π‘ New blogs out: Compartmentalized attacks are no longer limited to financially motivated actors, state-sponsored groups are adopting them too. We propose a new taxonomy for initial access groups to reflect broader motivations and affiliations. (1/3)
13.05.2025 13:02 β π 6 π 3 π¬ 1 π 0In addition, we have also published a blog proposing an extension to the Diamond Model to support more accurate and comprehensive threat modeling support for compartmentalized intrusion sets. Check it out too!
blog.talosintelligence.com/compartmenta...
Excited to announce that Asheer Malhotra, @ashl3y-shen.bsky.social, @vventura.bsky.social and I just published a new blog on how initial access groups are changing and propose a new taxonomy to support the latest threats that we are seeing. Check it out!
blog.talosintelligence.com/redefining-i...
Come catch @infosec-nick.bsky.social and I in DC this coming week to talk compartmentalized intrusions!
11.05.2025 20:10 β π 2 π 0 π¬ 0 π 0Spam campaign targeting Brazil abuses Remote Monitoring and Management tools blog.talosintelligence.com/spam-campaig...
11.05.2025 20:08 β π 1 π 0 π¬ 0 π 0Excited to announce that @infosec-nick.bsky.social and I will be presenting on compartmentalization in cyber threats at the CTA TIPS conference next month! Come check it out!
15.04.2025 14:41 β π 2 π 0 π¬ 0 π 0Come join us at the Ask A Security Expert session at Black Hat Asia on April 4th! I'll be there with Orange Tsai, Ryan Flores, and Dr. Marina Krotofil answering your cybersecurity questions. Submit your topics in advance using the form on the event page. Looking forward to seeing you there!
24.03.2025 16:04 β π 4 π 2 π¬ 1 π 0Physical Key Copying Starts With A Flipper Zero hackaday.com/2025/03/25/p...
26.03.2025 12:41 β π 3 π 0 π¬ 0 π 0Introducing: abuse.ch Hunting Platform abuse.ch/blog/introdu...
17.03.2025 13:26 β π 4 π 2 π¬ 0 π 0We are now hosting the DOGE contact list locally. www.2600.com/content/2600...
12.03.2025 19:13 β π 68 π 29 π¬ 3 π 1I am really proud and humbled for being accepted at Pivot on. This was a team effort with @ashl3y-shen.bsky.social , @b4n1shed.bsky.social and Asheer Malhotra
08.03.2025 08:54 β π 5 π 1 π¬ 0 π 0Honored and excited to be speaking at @pivotcon.bsky.social again this year! π Huge shoutout to the co-authors @_vventura, @b4n1shed.bsky.social and @asheermalhotra βcouldnβt have done this research without you! Looking forward to seeing everyone in MΓ‘laga.
This year I must join the Karaoke!π
5 Things You Must Check Before Selling On eBay, Facebook Or Etsy
www.forbes.com/sites/zakdof...
Just published a new blog on many of the threats and scams targeting sellers on online marketplaces like Ebay, Reverb, etc. along with recommendations for people using these platforms. Check it out! #phishing #infosec
25.02.2025 11:39 β π 1 π 0 π¬ 0 π 0They posted SECRET//NOFORN documents on their site related to IC headcount.
Those of you reading this who have held a clearance know what a colossal no-no this is.
Scoop: The databases powering DOGE.gov are insecure, and people outside the government have already pushed their own updates to the site to prove it:
www.404media.co/anyone-can-p...
REPOST if you support our federal workforce and know how dedicated they are to their jobs. Show them you appreciate them!
14.02.2025 01:15 β π 35414 π 21233 π¬ 593 π 685DOGE as a National Cyberattack www.schneier.com/blog/archive...
13.02.2025 14:53 β π 1 π 0 π¬ 0 π 0EFF Sues OPM, DOGE and Musk for Endangering the Privacy of Millions www.eff.org/press/releas...
12.02.2025 13:37 β π 0 π 0 π¬ 0 π 0The U.S. sanctioned #Zservers -- a Russian bulletproof hosting service used to facilitate ransomware attacks by #LockBit
therecord.media/zservers-rus...